Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@pananames.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
1xlite-0032263[.]bar
“1xBet ᐉ Online Sports Betting ᐉ 1xBet Online Bookmaker Log In ᐉ 1xlite-0032263.bar”
1xlite-0032263.bar — Непроверенный. Олицетворение бренда: Apple; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 95/100. Регистратор: URL SOLUTIONS.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain 1xlite-0032263.bar is a generic phishing website designed to steal login credentials. It impersonates the 1xBet online sports betting platform, presenting a page title that reads '1xBet ᐉ Online Sports Betting ᐉ 1xBet Online Bookmaker Log In ᐉ 1xlite-0032263.bar' to trick users into entering their account details. The site is currently taken offline, but it posed a credential phishing threat, not a crypto drainer, and did not impersonate any specific brand beyond the generic 1xBet lookalike.
Technical indicators confirm the malicious nature of 1xlite-0032263.bar. VirusTotal reports 15 of 95 security vendors flagging the domain, including ADMINUSLabs, alphaMountain.ai, and Chong Lua Dao. The domain was registered through URL SOLUTIONS INC. on September 24, 2025, and resolves to IP address 178.253.34.218, located in SC (AS202492 SILVERHILL GROUP HOLDING LTD). It appears on 1 security blocklist (PhishDestroy). SSL issuer information is not available. The site uses technologies including C, Perl, Angie, and HSTS, and returned an HTTP status of 203. No MX records were present, and nameservers are edns7.ultradns.biz, edns7.ultradns.com, edns7.ultradns.net, and edns7.ultradns.org.
Users who interacted with 1xlite-0032263.bar should take immediate safety steps. Since this is a credential phishing scam, change any passwords entered on the site and enable two-factor authentication on the affected accounts. Monitor financial accounts and email for signs of fraud. To report the domain, submit it to security blocklists like PhishDestroy and to Google Safe Browsing for future protection. No crypto wallet actions are needed as no drainer kit was detected.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | 1xlite-0032263.bar |
malicious | Sinkholed |
| DNS4EU | 1xlite-0032263.bar |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | 1xlite-0032263.bar |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of 1xlite-0032263.bar · checked Mar 15, 2026
Доказательства и внешние отчеты
PD-20260315-B27228 Recipient: abuse@pananames.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание